Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

What Microsoft's Latest Email Benchmark Proves About Defense-in-Depth

Let’s face it: inertia is often the most common yet most dangerous adversary when it comes to acquiring new technology, especially in cybersecurity. There is still a persistent assumption across many organizations that email security architecture that worked three years ago is still good enough for today’s threat landscape. Even when security teams suspect gaps, the friction of evaluating, procuring and operationalizing new technology creates a massive organizational bottleneck.

How to Make a New Email Address for Secure, Encrypted Messages

Making a new email address only takes a few minutes. But when creating a new email account, it's worth considering more than just how easy it is to sign up. Your email provider can determine how your messages, attachments, and personal information are protected. This is why Internxt has added Internxt Mail to join its private cloud storage solution, VPN, and other products to guarantee your privacy online with end-to-end encryption.

Sophisticated Phishing Operation Continues to Thrive Following FBI Takedown

China-based cybercriminals are using a sophisticated phishing-as-a-service platform called the “Outsider Phishing Kit” to launch massive phishing campaigns around the world, according to researchers at Group-IB. “The scale of this operation is staggering,” the researchers write. “From December 2025 to May 2026, Group-IB has identified over 100,000 phishing pages targeting 54+ countries, leveraging 267 (and growing) phishing templates.

DMARC Explained: How to Stop Attackers From Impersonating Your Domain

Email is still the most common way attacks begin. Phishing, business email compromise, and brand impersonation all rely on one simple weakness: by default, anyone can send an email that claims to come from your domain. The protocol that email runs on was never built to verify who a sender really is, so a criminal can forge the "From" address to look exactly like it came from your company, and the receiving mail server has no built-in way to know the difference. That is the gap attackers exploit, and it is the gap DMARC was designed to close.

Millions of Phishing Emails Use ASCII Smuggling to Bypass Security Filters

A massive phishing campaign is using invisible Unicode tag characters to evade security filters, according to researchers at Microsoft. This technique, known as “ASCII smuggling,” has grown popular over the past year for launching AI prompt injection attacks, but the same tactic can hide suspicious text in emails.